← Policy gallery

NIST SSDF: PS — Release Archived

warning

ssdf_ps_release_archived

secure-development security pure_temporal secure-developmentnistssdfsupply-chainpsrag-amber

Each release and its associated files are archived and protected (PS.1/PS.3).

Formula

G(Release → P(release_archived))

Why it matters

SSDF PS.1/PS.3: protect all forms of code from unauthorized access and tampering, and archive each release.

Examples

passes the practice's evidence is present

fails the required secure-development step is absent

Use it

ponens policies add ssdf_ps_release_archived --into ./trace.json
ponens trace check ./trace.json